Virusign
Info

Details for 6e4b479da5c4872cabd8109bef17de84db531bfcc93bd7752aaf16bb2a70e391

Namestub.exe
Date (Y-m-d)2019-02-06
Size (Bytes)808960 (790KB)
FilePE32 executable (GUI) Intel 80386, for MS Windows
TrID50.8% (.EXE) Win32 Executable MS Visual C++ (generic) (31206/45/13)
21.3% (.SCR) Windows screen saver (13101/52/3)
10.7% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
7.3% (.EXE) Win32 Executable (generic) (4508/7/1)
3.3% (.EXE) OS/2 Executable (generic) (2029/13)
CRC32ebf1a0b4
MD594c96b5d5ca87d10fa8c38aae6bde06d
SHA1470de9f6f36e652f511b291d6ef96313e1e85608
SHA2566e4b479da5c4872cabd8109bef17de84db531bfcc93bd7752aaf16bb2a70e391
ImpHashc2cbac1a39338af3128ca3dc7e780b2a
ImpFuzzy24:KFrw+7Zp4HD71XyAgM3O5WTXKFOt64XgxKT5ogezBuKmim3:+w+dQ1XFE58XSOtkMt2kKPm3
SSDeep24576:NvFtO0pnOQysicK4t3kO8scPyOpwJtFr:Jrpdyl4tUOnigD
Online Analysis 1x
Online Analysis 2x
Online Analysis 3http://sarvam.ece.ucsb.edu/analysis/94c96b5d5ca87d10fa8c38aae6bde06d
AV1 (ClamAV) StatusNo detection
AV2 AV3 AV4 AV5 StatusDetected on 2019-02-06
AV1 DetectionOK
AV1 Virus Signatures VersionClamAV 0.100.2/25357/Mon Feb 11 10:38:50 2019 (2019-02-11)
AV2 DetectionTrojan.Win32.CoinMiner
AV2 Virus Signatures VersionVDB: 07.02.2019 08:42:26 (Build: 101271) (2019-02-07)
AV3 DetectionW32/S-4ce0b8da!Eldorado
AV3 Virus Signatures Version201902052254 (2019-02-06)
AV4 DetectionTroj/Miner-LN
AV4 Virus Signatures Version5.59 15 January 2019 (2019-02-06)
AV5 DetectionGen:Variant.Razy.415792(DB)
AV5 Virus Signatures Version7.79380 (2019-02-06)